From d26e7184533dcc20c760dbb920b581de04859249 Mon Sep 17 00:00:00 2001 From: Ryan Boren Date: Sun, 28 Nov 2004 05:24:09 +0000 Subject: [PATCH] Use preg_quote() to make spam words regex safe. git-svn-id: https://develop.svn.wordpress.org/trunk@1896 602fd350-edb4-49c9-b593-d223f7449a82 --- wp-includes/functions.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/wp-includes/functions.php b/wp-includes/functions.php index 2802b87a4c..db2ab195fe 100644 --- a/wp-includes/functions.php +++ b/wp-includes/functions.php @@ -1732,7 +1732,7 @@ function check_comment($author, $email, $url, $comment, $user_ip, $user_agent) { // Do some escaping magic so that '#' chars in the // spam words don't break things: - $word = preg_replace('/(\\\\|#)/','\\\\$1',$word); + $word = preg_quote($word, '#'); $pattern = "#$word#i"; if ( preg_match($pattern, $author) ) return false;